Google
PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #219
As part of your organization's zero trust strategy, you use Identity-Aware Proxy (IAP) to protect multiple applications. You need to ingest logs into a Security Information and Event Management…
The correct answer is A. Data Access audit logs. The data_access log name only appears if there was traffic to your resource after you enabled Cloud Audit Logs for IAP. Click to expand the date and time of the access you want to review. Authorized access has a blue i icon. Unauthorized access has an orange !! icon…
Submitted by femi9· Apr 18, 2026Managing operations within a cloud solution environment
Question
As part of your organization's zero trust strategy, you use Identity-Aware Proxy (IAP) to protect multiple applications. You need to ingest logs into a Security Information and Event Management (SIEM) system so that you are alerted to possible intrusions. Which logs should you analyze?
Options
- AData Access audit logs
- BPolicy Denied audit logs
- CCloud Identity user log events
- DAdmin Activity audit logs
How the community answered
(68 responses)- A71% (48)
- B4% (3)
- C18% (12)
- D7% (5)
Explanation
The data_access log name only appears if there was traffic to your resource after you enabled Cloud Audit Logs for IAP. Click to expand the date and time of the access you want to review. Authorized access has a blue i icon. Unauthorized access has an orange !! icon. https://cloud.google.com/iap/docs/audit-log-howto
Topics
#Identity-Aware Proxy (IAP)#Audit Logs#SIEM#Intrusion Detection
Community Discussion
No community discussion yet for this question.